Last updated: 2026-01-15 14:16:13 +0100
unclassified (114)
??: 114
Average staleness: 412 / Average age: 563
unknown (35)
Major: 1 / Normal: 5 / Minor: 13 / Trivial: 10 / ??: 6
Average staleness: 893 / Average age: 1265
tracker (27)
Normal: 1 / ??: 26
Average staleness: 417 / Average age: 974
| Bug | Severity | Summary | Status | Stale | Age |
|---|---|---|---|---|---|
| 915553 | Normal | [Tracker] HTTP/2 Rapid Reset vulnerability CVE-2023-44487 Tracked bugs: 8 open / 14 total | 153 | 828 | |
| 824306 | ?? | [Tracker] Vulnerability in gstreamer (CVE-2021-3522) CVE-2021-3522 Tracked bugs: 1 open / 2 total | 1519 | 1519 | |
| 807352 | ?? | [Tracker] NO STARTTLS collection of vulnerabilities Tracked bugs: 2 open / 18 total | 1239 | 1619 | |
| 811909 | ?? | [Tracker] ElGamal Plaintext Recovery in dev-libs/botan CVE-2021-40529 Tracked bugs: 1 open / 2 total | 1239 | 1591 | |
| 924455 | ?? | [Tracker] "KeyTrap" DNS DoS vulnerability CVE-2023-50387 CVE-2023-50868 Tracked bugs: 4 open / 5 total | 695 | 701 | |
| 643228 | ?? | [TRACKER] kernel: Meltdown and Spectre - A flaw in modern processors (CVE-2017-{5715,5753,5754}) Tracked bugs: 1 open / 7 total | 683 | 2934 | |
| 643342 | ?? | [TRACKER] hw: cpu: speculative execution branch target injection (CVE-2017-5715) CVE-2017-5715 Tracked bugs: 1 open / 11 total | 683 | 2933 | |
| 920280 | ?? | [Tracker] Terrapin Vulnerability CVE-2023-48795 Tracked bugs: 4 open / 10 total | 635 | 759 | |
| 932373 | ?? | [Tracker] Mozilla Foundation Security Advisory for May 14/15th, 2024 CVE-2024-4367 CVE-2024-4767 CVE-2024-4768 CVE-2024-4769 CVE-2024-4770 CVE-2024-4777 MSFA2024-21 MSFA2024-22 MSFA2024-23 Tracked bugs: 263 open / 10000 total | 604 | 604 | |
| 942468 | ?? | [Tracker] Mozilla Foundation Security Advisory for October 29, 2024 CVE-2024-10458 CVE-2024-10459 CVE-2024-10460 CVE-2024-10461 CVE-2024-10462 CVE-2024-10463 CVE-2024-10464 CVE-2024-10465 CVE-2024-10466 CVE-2024-10467 CVE-2024-10468 MFSA2024-55 MFSA2024-56 MFSA2024-57 MFSA2024-58 MFSA2024-59 Tracked bugs: 1 open / 3 total | 443 | 443 |
upstream (92)
Major: 4 / Normal: 25 / Minor: 46 / Trivial: 13 / ??: 4
Average staleness: 990 / Average age: 1499
| Bug | Severity | Summary | Status | Stale | Age |
|---|---|---|---|---|---|
| 626822 | Major | media-libs/libmad: Dos (memory corruption) via crafted MP3 files CVE-2017-11552 | 1722 | 3089 | |
| 907924 | Major | dev-python/reportlab: remote code execution CVE-2023-33733 | 954 | 954 | |
| 866386 | Major | app-arch/unzip: null pointer dereference CVE-2021-4217 | 830 | 1240 | |
| 901393 | Major | app-admin/doas: vulnerable to privilege escalation via TIOCSTI/TIOCLINUX command injection CVE-2023-28339 | 373 | 1037 | |
| 721672 | Normal | CVE-2018-20225 | 2078 | 2078 | |
| 617474 | Normal | x11-libs/cairo: NULL pointer dereference with a crafted font file (CVE-2017-7475) CVE-2017-7475 | 1636 | 3178 | |
| 810034 | Normal | media-libs/plib: integer overflow leading to code execution (CVE-2021-38714) CVE-2021-38714 | 1605 | 1605 | |
| 717714 | Normal | 1551 | 2100 | ||
| 845039 | Normal | dev-embedded/u-boot-tools: unbounded memcpy in nfs CVE-2022-30767 | 1340 | 1340 | |
| 829835 | Normal | sys-devel/patch: invalid free vulnerability CVE-2021-45261 sys-devel/patch: Double free allowing DoS in another_hunk (CVE-2019-20633) | 1247 | 1485 |
upstreamebuild (32)
Normal: 9 / Minor: 15 / Trivial: 7 / ??: 1
Average staleness: 688 / Average age: 1212
| Bug | Severity | Summary | Status | Stale | Age |
|---|---|---|---|---|---|
| 798480 | Normal | app-text/djvu: multiple vulnerabilities (CVE-2021-{3500,32490,32491,32492,32493}) CVE-2021-32490 CVE-2021-32491 CVE-2021-32492 CVE-2021-32493 CVE-2021-3500 | 1476 | 1665 | |
| 759544 | Normal | www-misc/awstats: Arbitrary code execution (CVE-2020-35176) CVE-2020-35176 | 1248 | 1860 | |
| 821346 | Normal | 1181 | 1535 | ||
| 836920 | Normal | sys-apps/busybox: multiple vulnerabilities CVE-2022-28391 CVE-2022-30065 | 888 | 1380 | |
| 793953 | Normal | net-dns/avahi: multiple DoS vulnerabilities CVE-2021-3468 CVE-2021-3502 CVE-2021-36217 CVE-2023-1981 CVE-2023-38469 CVE-2023-38470 CVE-2023-38471 CVE-2023-38472 CVE-2023-38473 | 802 | 1688 | |
| 918403 | Normal | media-libs/tiff: crafted input results in out-of-memory CVE-2023-6277 | 783 | 783 | |
| 897952 | Normal | app-text/htmltidy: arbitrary code execution CVE-2021-33391 | 566 | 1054 | |
| 838382 | Normal | media-sound/sox: multiple vulnerabilities CVE-2021-23159 CVE-2021-23172 CVE-2021-23210 CVE-2021-33844 CVE-2021-3643 CVE-2021-40426 CVE-2022-31650 CVE-2022-31651 CVE-2023-26590 CVE-2023-32627 CVE-2023-34318 CVE-2023-34432 | 396 | 1371 | |
| 966254 | Normal | sys-boot/grub: multiple vulnerabilities CVE-2025-54770 CVE-2025-54771 CVE-2025-61661 CVE-2025-61662 CVE-2025-61663 CVE-2025-61664 | 57 | 57 | |
| 638434 | Minor | sys-libs/db: Berkeley DB reads DB_CONFIG from the current working directory CVE-2017-10140 | 2041 | 2976 |
ebuild (48)
Critical: 2 / Major: 4 / Normal: 14 / Minor: 19 / Trivial: 7 / ??: 2
Average staleness: 680 / Average age: 885
| Bug | Severity | Summary | Status | Stale | Age |
|---|---|---|---|---|---|
| 918679 | Critical | dev-libs/stb: multiple vulnerabilities CVE-2023-43281 CVE-2023-43898 CVE-2023-45661 CVE-2023-45662 CVE-2023-45663 CVE-2023-45664 CVE-2023-45666 CVE-2023-45667 CVE-2023-45675 CVE-2023-45676 CVE-2023-45677 CVE-2023-45678 CVE-2023-45679 CVE-2023-45680 CVE-2023-45681 CVE-2023-45682 | 648 | 779 | |
| 937483 | Critical | net-wireless/wpa_supplicant: possible privilege escalation CVE-2024-5290 | 264 | 526 | |
| 942684 | Major | sys-cluster/slurm: Incorrect Authorization CVE-2024-48936 | 298 | 440 | |
| 953891 | Major | www-client/firefox{-bin,}: multiple vulnerabilities CVE-2025-3608 | 274 | 275 | |
| 953892 | Major | mail-client/thunderbird{-bin,}: multiple vulnerabilities CVE-2025-2830 CVE-2025-3523 | 272 | 275 | |
| 965825 | Major | app-containers/containerd: multiple vulnerabilities CVE-2024-25621 CVE-2025-64329 GHSA-m6hq-p25p-ffr2 GHSA-pwhc-rpq9-4c8w | 51 | 68 | |
| 802513 | Normal | net-analyzer/fail2ban: code exection via malicious whois responses (CVE-2021-32749) CVE-2021-32749 | 1254 | 1644 | |
| 821220 | Normal | <sys-devel/gcc-12.1.0: Unicode "bidirectional override" (CVE-2021-42574) | 1250 | 1536 | |
| 868150 | Normal | CVE-2020-10735 | 1191 | 1230 | |
| 917613 | Normal | net-libs/pjproject: UAF in SRTP media transport CVE-2023-38703 | 787 | 787 |
stable? (16)
Major: 2 / Normal: 2 / Minor: 7 / ??: 5
Average staleness: 38 / Average age: 242
| Bug | Severity | Summary | Status | Stale | Age |
|---|---|---|---|---|---|
| 963579 | Major | app-emulation/open-vm-tools: local privilege escalation on guest VM CVE-2025-41244 | 84 | 108 | |
| 961516 | Minor | <dev-ruby/rails-{7.1.5.2:7.1,7.2.2.2:7.2,8.0.2.1:8.0}: Multiple Vulnerabilities CVE-2025-24293 CVE-2025-55193 | 153 | 153 | |
| 963338 | Minor | <net-libs/webkit-gtk-2.50.1: multiple vulnerabilities CVE-2025-43272 CVE-2025-43342 CVE-2025-43343 CVE-2025-43356 CVE-2025-43368 | 82 | 114 | |
| 715470 | Minor | <net-misc/sendmail-8.18.1-r1: Possibly inadequate key sizes for RSA | 75 | 2117 | |
| 966201 | Minor | CVE-2025-66270 | 32 | 59 | |
| 967498 | Minor | <app-containers/apptainer-1.4.5: ineffective application of selinux / apparmor --security option CVE-2025-65105 | 31 | 31 | |
| 966398 | ?? | 32 | 53 | ||
| 967237 | ?? | <dev-libs/glib-2.84.4-r1: Multiple vulnerabilities CVE-2025-13601 CVE-2025-14087 | 30 | 38 | |
| 967612 | ?? | <sys-apps/util-linux-2.41.3: Buffer overflow in setpwnam CVE-2025-14104 | 30 | 30 | |
| 967885 | ?? | <net-analyzer/net-snmp-5.9.5: "critical vulnerability" in snmptrapd | 22 | 23 |
stable (13)
Major: 3 / Normal: 5 / Minor: 5
Average staleness: 32 / Average age: 105
| Bug | Severity | Summary | Status | Stale | Age |
|---|---|---|---|---|---|
| 965719 | Major | <app-containers/runc-{1.2.8,1.3.3}: Multiple vulnerabilities CVE-2025-31133 CVE-2025-52565 CVE-2025-52881 | 69 | 71 | |
| 965550 | Major | <net-vpn/strongswan-6.0.3: buffer overflow and potential RCE with useflag eap CVE-2025-62291 | 40 | 72 | |
| 921521 | Normal | <mail-mta/sendmail-8.18.1: smtp smuggling CVE-2023-51765 | 173 | 740 | |
| 965041 | Normal | <net-dns/bind-{9.18.42,9.20.16}: multiple vulnerabilities CVE-2025-40778 CVE-2025-40780 CVE-2025-8677 | 51 | 84 | |
| 967910 | Minor | 22 | 23 |
cleanup (212)
Critical: 1 / Major: 29 / Normal: 35 / Minor: 133 / Trivial: 9 / ??: 5
Average staleness: 376 / Average age: 563
glsa? (651)
Major: 16 / Normal: 109 / Minor: 508 / Trivial: 3 / ??: 15
Average staleness: 553 / Average age: 838
glsa (0)
| Bug | Severity | Summary | Status | Stale | Age |
|---|
